• Filename: wp-config.php
    File Type: WordPress Configuration File
    Details: This file appears to be installed or modified by a hacker to perform malicious activity. If you know about this file you can choose to ignore it to exclude it from future scans. The matched text in this file is: include “\057hom\1454/k\150

    The issue type is: Backdoor:PHP/ObfuscatedInclude.6067
    Description: PHP include() statement with an obfuscated filepath.

    This is your main configuration file and cannot be deleted. It must be cleaned manually.

Viewing 5 replies - 1 through 5 (of 5 total)
  • Moderator Steven Stern (sterndata)

    (@sterndata)

    Volunteer Forum Moderator

    >> This is your main configuration file and cannot be deleted. It must be cleaned manually. <<

    True. rename wp-config.php to wp-config-bad.php. Copy wp-config-sample.php to wp-config.php and fill in the DB* variables and any other missing info.

    Then, get a fresh cup of coffee, take a deep breath and carefully follow this guide. When you’re done, you may want to implement some (if not all) of the recommended security measures.

    If you’re unable to clean your site(s) successfully, there are reputable organizations that can clean your sites for you. Sucuri and Wordfence are a couple.

    Thread Starter khubaibch

    (@khubaibch)

    thanks
    your mean i need new file and upload in same folder and change db name and use name etc

    Moderator Steven Stern (sterndata)

    (@sterndata)

    Volunteer Forum Moderator

    Yes.

    Thread Starter khubaibch

    (@khubaibch)

    thanks i will try… should i download latest version of wp because i have latest wp

    Moderator Steven Stern (sterndata)

    (@sterndata)

    Volunteer Forum Moderator

    REad the entirety of the articles I linked before starting.

Viewing 5 replies - 1 through 5 (of 5 total)
  • The topic ‘hacked’ is closed to new replies.